Claim transformations for trust relationships
First Claim
1. A claim transformation system for transforming a claim from one format to a different format, the system comprising:
- a first claim transformation submodule;
a second claim transformation submodule; and
wherein the first and second claim transformation submodules have the ability to transform a claim from one format to a plurality of different formats.
2 Assignments
0 Petitions
Accused Products
Abstract
This disclosure relates to the ability to use multiple claim transformation modules in a trust relationship. Claim transformation modules transform a claim or claim set into a transformed claim or claim set for use by a trusted partner and/or application. Multiple claim transformation modules may be given the opportunity to act on a claim or claim set in a pipelined fashion. In another embodiment, multiple claim transformation modules may exist, but only the proper claim transformation module(s) is(are) given the opportunity to act on a claim or claim set. In an embodiment, the claims involved are security claims used for authentication purposes between trust partners in a federated authentication system.
-
Citations
20 Claims
-
1. A claim transformation system for transforming a claim from one format to a different format, the system comprising:
-
a first claim transformation submodule;
a second claim transformation submodule; and
wherein the first and second claim transformation submodules have the ability to transform a claim from one format to a plurality of different formats. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9)
-
-
10. A method for transforming a claim at an extensibility point in a trust relationship environment, the method comprising:
-
maintaining in a trust relationship environment an extensibility point, wherein a single claim transformation submodule or multiple claim transformation submodules may be plugged in;
determining the first format of the claim;
determining the second format of the claim;
creating a claim transformation submodule customized to change the claim format from the first format to the second format; and
plugging the claim transformation submodule into the extensibility point. - View Dependent Claims (11, 12, 13, 14, 15, 16)
-
-
17. An extensible system for sharing and transforming claim information in a trust relationship, the system comprising:
-
a resource provider requesting information to authenticate an account;
an identity provider providing authentication information to the resource provider;
an account store maintaining authentication information to populate a claim to send to the requesting resource provider; and
an extensibility point, wherein one or more claim transformation submodules may be plugged in as part of such point to transform the claim from a first format provided by the identity provider to a second format recognized by the resource provider. - View Dependent Claims (18, 19, 20)
-
Specification